726,000 Patelco Customers Notified of Ransomware Data Breach
August 27, 2024Agent Tesla Malware – Active IOCs
August 27, 2024726,000 Patelco Customers Notified of Ransomware Data Breach
August 27, 2024Agent Tesla Malware – Active IOCs
August 27, 2024Severity
High
Analysis Summary
CVE-2024-7833
D-Link DI-8100 could allow a remote attacker to execute arbitrary commands on the system, caused by a command injection vulnerability. By sending a specially-crafted request to upgrade_filter.asp, an attacker could exploit this vulnerability to execute arbitrary commands on the system.
Impact
- Gain Access
Indicators of Compromise
CVE
- CVE-2024-7833
Affected Vendors
Affected Products
- D-Link DI-8100 - 16.07
Remediation
Refer to D-Link Security Advisory for patch, upgrade, or suggested workaround information.